首页> 外文会议>IEEE Joint Intelligence and Security Informatics Conference >Adaptive Change Detection for Relay-Like Behaviour
【24h】

Adaptive Change Detection for Relay-Like Behaviour

机译:用于继电器的行为的自适应变化检测

获取原文

摘要

Detecting anomalous behaviour in network flow data is challenging for a number of reasons, including both the computational demand associated with a large corporate network and the peculiar temporal characteristics of flow data. Relay-like behaviour refers to the rapid commencement of an out-going flow from a network device following the completion of an in-coming flow. This paper develops a computationally efficient and temporally adaptive methodology for detecting relay-like behaviour. The methodology is demonstrated on a real example of NETFLOW data. In addition to providing a detector, further uses of the methodology for combining anomalous events are discussed.
机译:由于多种原因,检测网络流数据中的异常行为是具有挑战性的,包括与大型企业网络相关的计算需求以及流量数据的特殊时间特征。类似的继电器的行为是指从完成即将到来的流程之后从网络设备的流出流动的快速开始。本文开发了用于检测继电器类似行为的计算上有效和时间的自适应方法。在NetFlow数据的真实例子上证明了方法。除了提供检测器之外,还讨论了用于组合异常事件的方法的进一步用途。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号